As a core component in the datacenter, OpenContrail needs to be sanitized from security vulnerabilities

Registered by Edward Ting on 2017-11-16

Currently OpenContrail is vulnerable to number of XSS (cross-site scripting) /CSRF(cross-site request forgery ) attacks as well as known CVE (Common Vulnerabilities and Exposures) in its core components as well as 3rd party libraries. Also there are areas where web DOS attacks can be exploited.

Hence it's important to harden OpenContrail from those security vulnerabilities.

Blueprint information

Status:
Not started
Approver:
None
Priority:
Medium
Drafter:
Edward Ting
Direction:
Approved
Assignee:
None
Definition:
Drafting
Series goal:
None
Implementation:
Unknown
Milestone target:
milestone icon r5.1.0

Related branches

Sprints

Whiteboard

Approved by TSC

(?)

Work Items

This blueprint contains Public information 
Everyone can see this information.